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PROPOSED AMENDED CLAIMS 

1-59 (Cancelled) 

60. (Currently Amended) A method of electronically negotiating an electronic 
negotiable document in the form of an electronic bank chequehaving a mpnetagvalue 
and sold by a seller to a buyer, wherein said seller is not a bank, the method comprising: 
providing said seller with seller tamper-resistant document earner hardware, said 
seller tamper-resistant document carrier hardware having its own public-secret key pair, 
and wherein said secret key is not accessible to said seller, said document carrier 
bearing said electronic negotiable document and a signature calculated using said secret 
key; 

providing said buyer with buyer tamper-resistant document carrier hardware, 
said buyer tamper-resistant document carrier hardware having its own public-secret key 
pair, and wherein said secret key is not accessible to said buyer; 

transferring said electronic negotiable document from said seller tamper- 
resistant document carrier hardware to said buyer tamper-resistant document carrier 
hardware; 

splitting said H"tr™^ nmytiniiln Hnrnmnnt hank cheque electronically in said 
buyer tamper-resistant document carrier hardware into two or more split versions of said 
sew electronic negotiable docum e nt hank cheque with ennh split version comprising the 
original electronic bank cheque, a sequence number and h aving a monetary value such 
that the sum of the monetary v alues of said two or more split versions new olootromc 
HQgotiablo document adds up to said monetary_v alue of said electronic ne gotiabl e 
doQument bank cheque; 

digitally signing said splitting said split versions using said secret key of said 
buyer tamper-resistant document carrier hardware to generate a splitting signature; and, 
without settlement of an account with a said bank, 

negotiating said two or more spirt versions h ow olootronic negotiable docum e nts 
separately to one or more further buyers without the involvement of a trusted third party 
(TIP); 
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wherein said digitally signing of sp&tiBgsaid split versions, comprises 
subjecting each of said two or more ggM split versions uuw uloctronio nogotinhl* 
document to said secret key of said buyer tamper-resistant document carrier hardware; 
and 

wherein said electronic negotiable document hank cheque a fl d - said two or more 
n u w ul o ctronic nogoti ab lo documents each ha ve ba§_an associated sequence number, and 
wherein said electronic negotiable doonmmt bank cheque, including its said associated 
sequence number, is signed by said secret key of the seller tamper-resistant document 
carrier hardwarer ond whoroin e ach of aaid now electronic nogotiablo documonta, each 
including its said aaoooiatod soquonoo number., ia aignod by ooid o e cr e t k e y of th e buy e r 
tamper r e sistant docum e nt carri e r hardwar e . 

61-62 (Canceled) 

63 . (Currently amended) The method as claimed in claim €2r (^wherein said seller 
and said buyer tamper-resistant document carrier hardware each have a document 
carrier identifier, and wherein each said document carrier identifier is signed by a said 
secret key. 

64. (Previously presented) The method as claimed in claim 60 wherein said seller 
tamper-resistant document carrier hardware bears an issuing signature, and wherein said 
transferring includes transferring said issuing signature from said seller tamper-resistant 
document carrier hardware to said buyer tamper-resistant document carrier hardware. 

65. (Previously presented) The method as claimed in claim 64 further comprising 
deleting said issuing signature after said transferring. 

66. (Cancelled). 

67. (new) A method of electronically negotiating an electronic negotiable document in 
the form of an electronic bill of lading having a monetary value and sold by a seller to a 
buyer, wherein said seller is not a bank, the method comprising: 
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providing said seller with seller tamper-resistant document carrier hardware, said 
seller tamper-resistant document carrier hardware having its own public-secret key pair, 
and wherein said secret key is not accessible to said seller, said document carrier 
bearing said electronic negotiable document and a signature calculated using said secret 
key; 

providing said buyer with buyer tamper-resistant document carrier hardware, 
said buyer tamper-resistant document carrier hardware haying its own public-secret key 
pair, and wherein said secret key is not accessible to said buyer; 

transferring said electronic negotiable document from said seller tamper- 
resistant document carrier hardware to said buyer tamper-resistant document carrier 
hardware; 

splitting said electronic bill of lading electronically in said buyer tamper- 
resistant document carrier hardware into two or more split versions of said electronic 
bill of lading with each split version comprising the original electronic bill of lading, a 
sequence number and having a monetary value such that the sum of the monetary values 
of said two or more split versions adds up to said monetary value of said electronic bill 
of lading; 

digitally signing said split versions using said secret key of said buyer tamper- 
resistant document carrier hardware to generate a splitting signature; and, without 
settlement of an account with a said bank, 

negotiating said two or more split versions separately to one or more further 
buyers without the involvement of a trusted third party (TTP); 

wherein said digitally signing of said split versions comprises subjecting each of 
said two or more said split versions to said secret key of said buyer tamper-resistant 
document carrier hardware; and 

wherein said electronic bill of lading has an associated sequence number, and 
wherein said electronic bill of lading, including its said associated sequence number, is 
signed by said secret key of the seller tamper-resistant document carrier hardware. 

68. (new) A method of electronically negotiating an electronic negotiable document in 
the form of an electronic bill of lading having a quantity of goods and sold by a seller to 
a buyer, wherein said seller is not a bank, the method comprising: 
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providing said seller with seller tamper-resistant document carrier hardware, said 
seller tamper-resistant document carrier hardware having its own public-secret key pair, 
and wherein said secret key is not accessible to said seller, said document carrier 
bearing said electronic negotiable document and a signature calculated using said secret 
key; 

providing said buyer with buyer tamper-resistant document carrier hardware, 
said buyer tamper-resistant document carrier hardware having its own public-secret key 
pair, and wherein said secret key is not accessible to said buyer; 

transferring said electronic negotiable document from said seller tamper- 
resistant document carrier hardware to said buyer tamper-resistant document carrier 
hardware; 

splitting said electronic bill of lading electronically in said buyer tamper- 
resistant document carrier hardware into two or more split versions of said electronic 
bill of lading with each split version comprising the original electronic bill of lading, a 
sequence number and having a quantity of goods such that the sum of the quantity of 
goods of said two or more split versions adds up to said quantity of goods of said 
electronic bill of lading; 

digitally signing said split versions using said secret key of said buyer tamper* 
resistant document carrier hardware to generate a splitting signature; and, without 
settlement of an account with a said bank, 

negotiating said two or more split versions separately to one or more further 
buyers without the involvement of a trusted third party (TTP); 

wherein said digitally signing of said split versions comprises subjecting each of 
said two or more said split versions to said secret key of said buyer tamper-resistant 
document carrier hardware; and 

wherein said electronic bill of lading has an associated sequence number, and 
wherein said electronic bill of lading, including its said associated sequence number, is 
signed by said secret key of the seller tamper-resistant document carrier hardware. 
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1-59 (Cancelled) 



60. (Currently Amended) A method of electronically negotiating an electronic 
negotiable document in the form of an electronic b ank cheque having a monetar^value 
and sold by a seller to a buyer, wherein said seller is not a bank, the method comprising: 
providing said seller with seller tamper-resistant document carrier hardware, said 
seller tamper-resistant document carrier hardware having its own public-secret key pair, 
and wherein said secret key is not accessible to said seller, said document carrier 
bearing said electronic negotiable document and a signature calculated using said secret 
key; 

providing said buyer with buyer tamper-resistant document carrier hardware, 
said buyer tamper-resistant document carrier hardware having its own public-secret key 
pair, and wherein said secret key is not accessible to said buyer; 

transferring said electronic negotiable document from said seller tamper- 
resistant document carrier hardware to said buyer tamper-resistant document carrier 
hardware; 

splitting said electronic negotiable document hank cheque electronically in said 
buyer tamper-resistant document carrier hardware into two or more split versions of said 
sew electronic negotiabl e document bank cheque with each split version comprising the 
original electronic bank cheque, a sequence number andh aving a monetary value such 
that the sum of the monetary v alues of said two or more split versions aew clootronio 
n e gotiabl e document adds up to said monetary v alue of said electronic negotiabl e 
docum e nt bank cheque: 

digitally signing said oplitting said split versions using said secret key of said 
buyer tamper-resistant document carrier hardware to generate a splitting signature; and, 
without settlement of an account with a said bank, 

negotiating said two or more split versions n ow olootronio negotiable docum e nts 
separately to one or more further buyers without the involvement of a trusted third party 
(TTP); 
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wherein said digitally signing of sptittjgg said split versions comprises 
subjecting each of said two or more said split versions n o w electronic negotiable 
decumont to said secret key of said buyer tamper-resistant document carrier hardware; 
and 

wherein said electronic negotiable docum e nt bank cheque and paid two or more 
now electronic negotiable documents each hnv* hasan associated sequence number, and 
wherein said »w*™i^ nngnrmhln rinoum e nt bank cheque, including its said associated 
sequence number, is signed by said secret key of the seller tamper-resistant document 
carrier hardwar e, and whoroin oaoh of said now oloctronio negotiable documonto, each 
inoluding itfl mid ossoci - atod sequ e nce number, io flignod by aaid oocrot key of the buy ef 
tamper resistant docum e nt carrier hardware . 

61-62 (Canceled) 

63 . (Currently amended) The method as claimed in claim 62- ^wherein said seller 
and said buyer tamper-resistant document carrier hardware each have a document 
carrier identifier, and wherein each said document carrier identifier is signed by a said 
secret key. 

64. (Previously presented) The method as claimed in claim 60 wherein said seller 
tamper-resistant document carrier hardware bears an issuing signature, and wherein said 
transferring includes transferring said issuing signature from said seller tamper-resistant 
document carrier hardware to said buyer tamper-resistant document carrier hardware. 

65. (Previously presented) The method as claimed in claim 64 further comprising 
deleting said issuing signature after said transferring. 

66. (Cancelled). 

67. (new) A method of electronically negotiating an electronic negotiable document in 
the form of an electronic bill of lading having a monetary value and sold by a seller to a 
buyer, wherein said seller is not a bank, the method comprising: 
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providing said seller with seller tamper-resistant document carrier hardware, said 
seller tamper-resistant document carrier hardware having its own public-secret key pair, 
and wherein said secret key is not accessible to said seller, said document carrier 
bearing said electronic negotiable document and a signature calculated using said secret 
key; 

providing said buyer with buyer tamper-resistant document carrier hardware, 
said buyer tamper-resistant document carrier hardware having its own public-secret key 
pair, and wherein said secret key is not accessible to said buyer, 

transferring said electronic negotiable document from said seller tamper- 
resistant document carrier hardware to said buyer tamper-resistant document carrier 
hardware; 

splitting said electronic bill of lading electronically in said buyer tamper- 
resistant document carrier hardware into two or more split versions of said electronic 
bill of lading with each split version comprising the original electronic bill of lading, a 
sequence number and having a monetary value such that the sum of the monetary values 
of said two or more split versions adds up to said monetary value of said electronic bill 
of lading; 

digitally signing said split versions using said secret key of said buyer tamper- 
resistant document carrier hardware to generate a splitting signature; and, without 
settlement of an account with a said bank, 

negotiating said two or more split versions separately to one or more further 
buyers without the involvement of a trusted third party (TTP); 

wherein said digitally signing of said split versions comprises subjecting each of 
said two or more said split versions to said secret key of said buyer tamper-resistant 
document carrier hardware; and 

wherein said electronic bill of lading has an associated sequence number, and 
wherein said electronic bill of lading, including its said associated sequence number, is 
signed by said secret key of the seller tamper-resistant document carrier hardware. 

68. (new) A method of electronically negotiating an electronic negotiable document in 
the form of an electronic bill of lading having a quantity of goods and sold by a seller to 
a buyer, wherein said seller is not a bank, the method comprising: 
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providing said seller with seller tamper-resistant document carrier hardware, said 
seller tamper-resistant document carrier hardware having its own public-secret key pair, 
and wherein said secret key is not accessible to said seller, said document carrier 
bearing said electronic negotiable document and a signature calculated using said secret 
key; 

providing said buyer with buyer tamper-resistant document carrier hardware, 
said buyer tamper-resistant document carrier hardware having its own public-secret key 
pair, and wherein said secret key is not accessible to said buyer, 

transferring said electronic negotiable document from said seller tamper- 
resistant document carrier hardware to said buyer tamper-resistant document carrier 
hardware; 

splitting said electronic bill of lading electronically in said buyer tamper- 
resistant document carrier hardware into two or more split versions of said electronic 
bill of lading with each split version comprising the original electronic bill of lading, a 
sequence number and having a quantity of goods such that the sum of the quantity of 
goods of said two or more split versions adds up to said quantity of goods of said 
electronic bill of lading; 

digitally signing said split versions using said secret key of said buyer tamper- 
resistant document carrier hardware to generate a splitting signature; and, without 
settlement of an account with a said bank, 

negotiating said two or more split versions separately to one or more further 
buyers without the involvement of a trusted third party (TTP); 

wherein said digitally signing of said split versions comprises subjecting each of 
said two or more said split versions to said secret key of said buyer tamper-resistant 
document carrier hardware; and 

wherein said electronic bill of lading has an associated sequence number, and 
wherein said electronic bill of lading, including its said associated sequence number, is 
signed by said secret key of the seller tamper-resistant document carrier hardware. 
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US 11/708,267 

Amendments to claims finally rejected in view of Pats. 5,606,609 (Houser) and 
5,224,166 (Hartman Jr.) in parent Serial No. 09/747,51 1 

2S-1. A method of electronically issuing an electronic negotiable document (END), 
the method comprising; 

creating as data an END and storing this in tamper-resistant document carrier 
hardware, the document carrier hardware containing a unique public-secret key pair 
for signing and verifying, and a unique document-earner identifier; 

signing the unique docurnent-canier identifier, the END and an END identifier 
using the secret key of the public-secret key pair; and 

storing a the result of said signing in flte -said tamper-resistant document- 
carrier hardwar e, such thal_said secret key is not accessible to an owner of said 
tamper-resistant document carrier hardware . 

(new) 2, A method as claimed in claim 1 wherein said result of said signing 
comprises a digital signature, and wherein said digital signature is only accessible by 
other said tamper-resistant document carrier hardware, encrypted by a public key of 
said other tamper-resistant document carrier hardware. 

(new) 3. A method as claimed in claim 2 wherein said encrypted digital 
signature is only accessible once. 

264. A method according to claim 25- 1 of issuing an END, further comprising 
generating a time stamp representing the time of issue and storing this with the END 
in the tamper-resistant document carrier hardware before the signing step^and 

27 A method according to claim - 25 of iGOuing an END including the step of 
calculating a hash value of one or both of the END andfef the time stamp value and 
storing this hash value instead of the full END in die tamper-resistant document 
carrier hardware, before the said signing step. 

28-30 Cancelled 
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34- 5 . A method according to claim 35 1 of issuing an END, in which the document 
carrier hardware stores a negotiability status flag indicative of whether the END 
stored therein is negotiable or non-negotiable, and including the step of setting the 
flag to "negotiable" after the result of the encryption has been stored in the document 
carrier hardware. 

32r6. A method according to claim 2& I of issuing an END, in which the document 
carrier hardware includes a counter for counting a serial number, indicative of the 
number of times that the END has been negotiated since issue, and comprising the 
step of setting the counter to zero after the result of the encryption has been stored in 
the document carrier hardware. 

33* 7. Tamper-resistant document carrier hardware adapted to store an END in 
accordance with the method of claim 25- 1, said hardware comprising read only 
software for controlling the steps of storing the END, encrypting the END and other 
data with said secret key, and storing the result in a memory. 

34-35 Cancelled 

36 8. A method of electronically negotiating an END between a seller and a buyer, 
said seller and said buyer each possessing tamper-resistant document carrier hardware 
having its own public-secret key pair, the method comprising: 

pmviHinp an in which th e END is-stored in th e 5 e ll e r ? & 4amper-resistarrt 

document carrier hardware of a seller in the form of END data and the- with a 
signature generated by fee ooorot signing a secret key of a document carrier of the 
issuer of the END togeth e r, and with a negotiability status flag indicative of whether 
the END is currently negotiable from *he ~said tamper-resistant document carrier 
hardware on which it is stored of said seller, saidjtarnper-resistant docum e nt carrier 
hardware of saidjsejler having its own public-secret key and being configured such 
that said secret key of said public-secret key pair is not accessible to said seller. 

comprisinfi-estab lishing mutual recognition between Ae-said seller and a buyer 
using one or more predetermined protocols between tho buy e r's and s e ll e r ^said 
tamper-resistant document carrier hardwa res of said seller and tamper-resistant 
document carrier hardware of said buyer, said tamper-resistant docum ent carrier 
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hardware of said buyer having its own public-secret key and being configured such 
that said secret kev of said public-secret key pair is not accessib le to said buyer; 

verifying in tho nollor'G said tamper-resistant document carrier hardware of 
said seller t hat said negotiability status flag is "negotiable" and aborting the 
negotiation if not; 

sending the-said public encryption key of th * hnyw ? «: *a\d tamper-resistant 
document carrier hardware of said buyer to tho soil or s aid tamper-resistant 
document carrier hardware of said seller; 

usiflp tt ^said public kev of said tamper-resistant document carrier hardware of 
said buyer in said tamper-resistant document carrier hardware of said seller t o encrypt 
a message comprising said signature, said END together with a nd said negotiability 
status flag; 

sending that-said encrypted message to tho buyor'o s aid tamper-resistant 
document carrier hardware of said buyer; 

decrypting feat -said encrypted message in said tamper-resistant document 
carrier hardware of said buyer using th e buyer's s aidsecret decryption encryption key 
of said tamper-resistant document carrier hardware of said buyer; and 

setting &e-a negotiability status flag for fea frsaid END oftho buyor'aand 
seller* o i n said tamper-resistant document carrier hardware of said buyer and said 
seller respectively to "negotiable" and "non-negotiable*. 

Claim 37 - see claim 12 0 

3£ 9. A method according to claim 36 8 in which said tamper-resistant document 
carrier hardware \a inrriallori originally with of each of said buver and said seller 
carries a digital c ertificate comprising a digital signature of i&a unique identifier and 
of its-said public key of said tamper-resistant document carrier hardware, the method 
further comprising 

42 A method according to claim 38, in which th e sending said digital certificate of the 
huvor'n said tamper-resistant document carrier hardware is-sent -of said buyer to the 
ssllegis -said tamper-resistant document carrier hardware of said seller in which it m 
authenticate d, authenticating said digital certificate of said tamper-resistant document 
carrier hardware of said buyer, and aborting said &e negotiation i s- abotf e dj f said 
authenticating authentication fails. 



PAGE 15/18 * RCVD AT 6/212008 12:06:53 PM [Eastern Daylight Time] * SVR:USPTO-EFXRF-5/27 ' DNIS:2738300 * CSID: * DURATION (mm-ss):05-08 



06/02/2008 12:10 FAI 



B1016 



USP271693B 

Claim 39 cancelled 

44 10. A method according to claim 3* 9 in which a digitaLcertificale unique to 
*©Klocument carrier hardware on which tbe-said END was originally issued is stored 
with fee -said END in tho goIlor'G said tamper-resistant document carrier hardware of 
said seller . 

Claims 41 to 51 (except 37) - cancelled 

1 1 (new). A method according to claim 8 further comprising, prior to said 
negotiating of said END, electronically issuing said END by: 

creating as data an END and storing this in tamper-resistant document carrier 
hardware, the document carrier hardware containing a unique public-secret key pair 
for signing and verifying) and a unique document-carrier identifier; 

signing the unique document-carrier identifier, the END and an END identifier 
using the secret key of the public-secret key pair; and 

storing a result of said signing in said tamper-resistant document-carrier 
hardware, such that said secret key is not accessible to an owner of said tamper- 
resistant document carrier hardware. 

12. A method according to claim 3 6, including 8 wherein sa id END has a 
predetermined period of validity, the method further comprising: 

inhibiting recovery of a lost END until expiry of said predetermined period of 
validity of the END: and 

after said expiry performing one or both of ; 

recovering the negotiation of an END which has previously broken down, by 
providing the buyar'o s aid tamper-resistant document carrier hardware of said buyer 
with tho noe e flsary s aid secret kev of said tamper-r esistant document carr ier hardware 
of said buyer which han boon is not accessible to said buyer, reproduced by the-an. 
issuer of said secret kev or by a trusted third part y: and 

51 A method according to oleum 36, including -recovering an END lost from primary 
said tamper-resistant document carrier hardware, by activating back r up tamper- 
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resistant document earner hardware which has previously been provided with back-up 
data reproduced from said primary tamper-resistant document carrier hardware. 

57 13. A method of electronically negotiating an END between a seller and a buyer, 
said seller and said buyer each possessing a tamper-resistant document carrier 
hardware having its own public-secret key pair, the method comprising: 

providing an i n which - th e- E ND stored in tho soller's -said tamoer-resistant 
document carrier hardware of a seller in the form of END data and th e with a 
signature generated by *©-a_secret signing-key of a document carrier hardware of the 
issuer of&e -said END togethe r and with a serial number counter indicative of the-a 
number of times that the -said END has been negotiated since issue, said tamper- 
resistant document carrier hardware of said seller having its own p ublic-secret key 
and being configured such that said secret key of said public-secret key pair is not 
accessible to said seller: g omprising 

establishing mutual recognition between said s eller and said buyer using one 
or more predetermined protocols between th a buy e rta and noll e r'n naid tamper- 
resistant document carrier hardware of said seller and tamper-resistant document 
carrier hardware of said buyer, said tamper-resistant document ca rrier hardware of 
said buyer having its own public-secret kev and be i"fl cmfjj gured such that said secret 
key of said public-secret key pair is not accessible to said buyer: 

verifying in th e sell e r's said tamper-resistant document carrier hardware of 
said seller t hat the-said END, if it has been stored previously in that-said tamper- 
resistant document carrier hardware of said seller, has a different counter value this 
time and is therefore negotiable; 

sending the-said public encryption key of th e buyer's- said tamper-resistant 
document carrier hardware of said buyer to thn . mWr . said tam p er-resistant 
document carrier hardware of said seller. 

using &said public kev of said tamper-resistant document carrier hardware of 
said buyer in said tamper-resistant document carrier hardware of said_sel1er t o encrypt 
a message comprising said signature, said END tog e th e r with th e a nd a value of said 
counter; 

sending fea frsaid encrypted message to the buvor'o s aid tamper-resistant 
document carrier hardware of said buven 
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decrypting feat -said encrypted message in said tamp er-resistant document 
carrier hardware of said buyer using the buy e r's saidsecret decryption encryption key 
of said tamper-resistant document carrier hardw are of said buyer: and 

incrementing said counter by one. 

^ p/w^w trv Haitn a &. -i nr.liiHm p 12 wherein said END has a 

predetermined period of validity, the method further comprising: 

inhibiting recover/ of a lost END until expiry of said predetermined p eriod of 
validity of the END; and 

after said expiry performing one or both of: 

recovering &e negotiation of an END which has previously broken down, by 
providing the buy or 'a s aid tamper-resistant document carrier hardware of said buyer 
with tho noo e ssary g ajd secret key of said tamper-resistant documen t carrier hardware 
of said buyer which has boen is not accessible to said buver A reproduced by the^n 
issuer of said secret key or by a trusted third part y: and 

55 A mothod aooording to claim 37, inoludm gHrecovering an END lost from primary 
said t^per-igsistant document carrier hardware, by activating back-up tamper- 
resistant document carrier hardware which has previously been provided with back-up 
data reproduced from said primary tamper-resistant document carrier hardware. 
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